Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

README: update handling of security vulnerabilities #10734

Merged
merged 1 commit into from
Jun 1, 2019

Conversation

spzala
Copy link
Member

@spzala spzala commented May 16, 2019

We may not want to suggest to contact CoreOS now. We could remove this
section but consiering the nature of the subject, discussion with the project
maintainers probably a good idea if someone doesn't find it comfortable
to report an issue right away.

We may not want to suggest to contact CoreOS now. We could remove this
section but consiering the nature of the subject, discussion with the project
maintainers probably a good idea if someone doesn't find it comfortable
to report an issue right away.
@spzala spzala requested review from xiang90 and hexfusion May 16, 2019 14:41
@spzala
Copy link
Member Author

spzala commented May 25, 2019

@xiang90 @hexfusion hello, I think this is safe to merge. Please look at it when you get a chance. Thanks!

@xiang90
Copy link
Contributor

xiang90 commented May 29, 2019

we probably should create a mailing list for handling security issues instead of asking users to reach out to maintainers individually.

@spzala
Copy link
Member Author

spzala commented May 29, 2019

@xiang90 sure, mailing list sounds a good idea. Do you have suggestion on creating it? I guess you or @hexfusion need to create it? Thanks!

@spzala
Copy link
Member Author

spzala commented May 31, 2019

@xiang90 once we have ML, we can use it at multiple place like here as well https://github.com/etcd-io/maintainers (by replacing the last line on email to maintainers) We have more reason to create ML :) Thanks!

@xiang90
Copy link
Contributor

xiang90 commented Jun 1, 2019

lgtm

@xiang90 xiang90 merged commit 0688645 into etcd-io:master Jun 1, 2019
@xiang90
Copy link
Contributor

xiang90 commented Jun 1, 2019

@spzala Can you research on how to get a etcd security mailing list from CNCF?

@spzala
Copy link
Member Author

spzala commented Jun 1, 2019

@xiang90 thanks and sure, I will reach out to CNCF and find it out, and hopefully will have it created soon.

@spzala
Copy link
Member Author

spzala commented Jun 1, 2019

@xiang90 I was thinking to create an issue for tracking purpose and contact @idvoretskyi from CNCF side but I while doing that I found that it's already a work in progress etcd-io/maintainers#6 I will follow up with Ihor. Thanks!

@spzala
Copy link
Member Author

spzala commented Jul 31, 2019

Created #10960

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

Successfully merging this pull request may close these issues.

2 participants